diff options
Diffstat (limited to 'pkg/app/handler/cvetool/comments.go')
-rw-r--r-- | pkg/app/handler/cvetool/comments.go | 3 |
1 files changed, 2 insertions, 1 deletions
diff --git a/pkg/app/handler/cvetool/comments.go b/pkg/app/handler/cvetool/comments.go index 3d76d75..1659ea7 100644 --- a/pkg/app/handler/cvetool/comments.go +++ b/pkg/app/handler/cvetool/comments.go @@ -8,6 +8,7 @@ import ( "glsamaker/pkg/models/cve" "encoding/json" "glsamaker/pkg/models/users" + "html" "net/http" "time" ) @@ -52,7 +53,7 @@ func addNewCommment(id string, user *users.User, comment string) (cve.Comment, e CVEId: id, UserId: user.Id, User: user, - Message: comment, + Message: html.EscapeString(comment), Date: time.Now(), } |